Red Hat Bugzilla – Bug 1596450
CVE-2018-12938 openslp: Double free in slp_buffer:SLPBufferRealloc() may allow a remote attacker to execute arbitrary code
Last modified: 2018-07-03 10:43:52 EDT
OpenSLP through version 2.0.0 is vulnerable to a double freeing of memory that causes a crash in the slp_buffer:SLPBufferRealloc() function. A remote unauthenticated attacker could exploit this to cause a denial of service or potentially execute arbitrary code.
Created openslp tracking bugs for this issue: Affects: fedora-all [bug 1596451]
Possibly related to CVE-2017-17833
*** This bug has been marked as a duplicate of bug 1572166 ***